PT-2021-20586 · Lenovo · Lenovo Power Management Driver

CVE-2021-3462

·

Published

2021-04-13

·

Updated

2022-10-27

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Lenovo Power Management Driver for Windows 10 versions prior to 1.67.17.54
Description: A privilege escalation issue could allow unauthorized access to the driver's device object.
Recommendations: For versions prior to 1.67.17.54, update to version 1.67.17.54 or later to resolve the issue.

Fix

Incorrect Default Permissions

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-3462

Affected Products

Lenovo Power Management Driver